Scammers are now sending phishing emails on Gmail with verified checkmark

Main Image
  • Like
  • Comment
  • Share

Google introduced a blue verified checkmark for Gmail to combat phishing emails and attackers impersonating businesses. However, it seems like scamsters have got their way around the safety mechanism thereby impersonating verified blue checkmark on phishing emails.

Earlier last month, Google introduced a blue verified checkmark on Gmail for organizations and companies that have been verified. The feature uses signals such as Brand Indicators for Message Identification (BIMI), Verified Mark Certified (VMC), and Domain-based Message Authentication, Reporting, and Conformance (DMARC) to put a blue-colored verified checkmark against emails of businesses to signal that it is legit.

With the latest information coming from cybersecurity engineer Chris Plummer, scammers have been able to bypass Google’s verified checkmark feature thereby impersonating businesses such as UPS in the tweet tagged below. For the unversed, the screenshot shows the UPS logo along with a notification stating that “kelerymjrlna.ups.com” is a verified email. There’s a blue-colored verified checkmark on the email as well.

Having a verified check mark against unauthorized emails will make it difficult for users to detect phishing attacks. It can open a whole new avenue for scammers to attack innocent users who might click on emails and links before ending up being phished.

However, when reported, Google tagged the bug as “won’t fix – intended behavior” and closed it lazily without any further resolution. It means if more attackers get to know the bug, they will use it to send phishing emails leading to a catastrophe. It is an irony given the fact that Google’s blue verified checkmark feature was introduced to end phishing emails.

Related Articles

ImageDo The Tensor G3 SoC And Seven Years Of Android Updates Make The Google Pixel 8a A Worthy Successor?

In a surprising turn of events, Google has announced its Pixel 8a ahead of its anticipated launch during I/O 2024. The smartphone succeeds the capable Pixel 7a and has all the photography and videography perks of the Pixel series. Although the phone offers a refreshed design, runs on Google’s flagship Tensor G3 SoC, and features a …

ImageTwitter Blue to redebut on December 2 with three color-graded checkmarks

Twitter CEO Elon Musk has recently announced that Twitter Blue will be relaunched on December 2. This time the verification system will also have three different colour-coded checkmarks to verify the user’s identity. Twitter will be adding gold checkmarks to the accounts owned by the companies, grey checkmarks to be provided to government bodies, and …

ImageTwitter will ask for phone number verification to curb impersonation

Twitter Blue is live and active now, and all the users around the globe are taking a keen interest. In a recent update, Twitter has announced that phone verification will be required on the platform to get to the blue tick or the verified mark. This step is being taken to avoid impersonation. A picture …

ImageHow to unsend an email in Gmail: Know more about ‘Undo Send’ feature of Gmail

Your work may require you to send several emails to various kinds of connections daily. In the process, you might have faced the issue of sending the wrong email or forgetting to attach the files immediately after hitting the send button. Well, if you are a Gmail user, Google lets you rectify your mistake by …

ImageHow to delete all your emails on Gmail?

If your Gmail Inbox is cluttered, trust me, you aren’t alone. Whether you are looking to clear storage space or want to organize the inbox clearing those ‘unread’ emails, here’s what you can do. Mass-deleting emails works like a charm as it subdues piling emails especially from job boards, dating sites, social networks, and a …

Discuss

Be the first to leave a comment.